Fred Damstra 69f08a591b Updates VPCs to 1.20.8 hace 4 años
..
000-mdradmin-bootstrap 87ac71ad57 Adds support for a "DISABLED" file to skip select modules hace 4 años
001-tfstate 87ac71ad57 Adds support for a "DISABLED" file to skip select modules hace 4 años
004-iam-okta dae5830a43 Adds a .tfswitch.toml to each module to select the appropriate tf version hace 4 años
006-account-standards 225a531e2a Updates shared ami and account standards for ASG compatibility hace 4 años
006-account-standards-regional dae5830a43 Adds a .tfswitch.toml to each module to select the appropriate tf version hace 4 años
008-xdr-binaries 79313e15e4 Updates the common services xdr-binaries to populate the S3 bucket hace 4 años
010-public-dns 3b6b585030 Adds private dnstest records for sensu tests hace 4 años
010-shared-ami-key bf6684df48 Updates Skeleton and mdr-prod-bas to 1.10.17 hace 4 años
011-defpoint_com-legacy-dns a0a42eccdc updates legacy-hec for moose to v1.10.18 hace 4 años
015-security-vpc 69f08a591b Updates VPCs to 1.20.8 hace 4 años
019-qualys-service-account c5d85f6e47 Updates all modules to v0.9.4 and makes sure they're applied hace 4 años
072-salt-master-inventory-role c5d85f6e47 Updates all modules to v0.9.4 and makes sure they're applied hace 4 años
README.md 671dc26b50 Initial Commit hace 5 años
account.hcl 47a726ef84 Adds a splunk_prefix variable and a "client" tag to accounts hace 4 años

README.md

README

I'm not sure if this is a helpful readme or not tbh

Authentication

A handful of these need the static access keys for the MDRAdmin account, mostly because at that point of setting up a new AWS account we don't have the okta integration in place.

Subfolders / subprojects

Subdirectory auth Purpose
000-mdradmin-bootstrap MDRAdmin + aws-mfa Configures MDRAdmin Account to have IAM rights to create terraform state
001-tfstate MDRAdmin + aws-mfa Creates TF state s3 bucket, dynamodb tables
005-iam okta + saml2aws Fundamental IAM setup - does OKTA linkage, sets up user roles and policies
common okta + saml2aws Variable / provider definitions used across multiple chunks